The US has called out Russia for enabling ransomware attacks on the country’s healthcare organizations, jeopardizing lives and threatening international peace and security.
Cloud-based data management subsidiary of Toyota exposed the information of 2.15 million customers in a decade-long data leak. The Toyota Connected service reminds owners to service their vehicles and links the car to entertainment services, and can assist during emergencies by calling for help and locating a car that’s been stolen.
Some privacy vault apps on Google Play Store are used as remote backdoor to harness devices for fake clicks in ad fraud scheme and to exfiltrate user data and files.
Google says it blocks 18 million daily malware and phishing emails related to COVID-19 plus another 240 million daily spam messages related to the coronavirus pandemic.
Canada’s House of Commons experienced a data breach from a recent Microsoft vulnerability and leaked the personal information of lawmakers and legislative staff members.
Leading cybersecurity firm Mandiant believes that a notorious group of Russian hackers is behind a recent rash of attacks on water utilities in several countries, including the United States. On January 18 the group was able to induce a tank overflow at a Texas water treatment plant, and has made similar incursions in France and Poland.
Tighter cybersecurity regulations that have already come for certain critical infrastructure industries are now being applied to rail and aviation, as the Biden administration continues a general program of hardening the country's cyber defenses.
European automotive giant Scania has confirmed a data breach that leaked insurance claim documents after a threat actor contacted employees and demanded a ransom.
Microsoft claims that its new passwordless methods reduce password use by over 20% and result in users signing in faster. The company added passkeys as an option for personal accounts along with a password manager for Windows Hello early last year.
Latest Twitter privacy breach exposed the inappropriate use of phone numbers and email addresses to serve up targeted ads to users. This data was collected for the purpose of the platform's two-factor authentication.










